<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Security Policy to block Dropbox in General Topics</title>
    <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-to-block-dropbox/m-p/9796#M7185</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What are the IPs listed in the destination address? Please look at your traffic log which indicates allow for dropbox and make sure to include the destination IPs in the destination address. I would rather leave this address as 'any'. When you see the traffic passing through, is it allowed through the rule that is above the deny rule?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 16 Aug 2012 20:31:26 GMT</pubDate>
    <dc:creator>zarina</dc:creator>
    <dc:date>2012-08-16T20:31:26Z</dc:date>
    <item>
      <title>Security Policy to block Dropbox</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-to-block-dropbox/m-p/9795#M7184</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have created a security policy to block Dropbox traffic, but so far it is not working. In my policy I have chosen:&lt;/P&gt;&lt;P&gt;Source:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Destination Zone:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; User:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Destination Address:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Application:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Service:&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Action;&lt;/P&gt;&lt;P&gt;trust&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; untrust&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Me (as a test)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; dropbox.com, compute-1.amazonaws.com&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; DropBox&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Any&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Deny&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Am I missing something?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Aug 2012 15:55:18 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/security-policy-to-block-dropbox/m-p/9795#M7184</guid>
      <dc:creator>kuntzelectroplating</dc:creator>
      <dc:date>2012-08-16T15:55:18Z</dc:date>
    </item>
    <item>
      <title>Re: Security Policy to block Dropbox</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-to-block-dropbox/m-p/9796#M7185</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;What are the IPs listed in the destination address? Please look at your traffic log which indicates allow for dropbox and make sure to include the destination IPs in the destination address. I would rather leave this address as 'any'. When you see the traffic passing through, is it allowed through the rule that is above the deny rule?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 16 Aug 2012 20:31:26 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/security-policy-to-block-dropbox/m-p/9796#M7185</guid>
      <dc:creator>zarina</dc:creator>
      <dc:date>2012-08-16T20:31:26Z</dc:date>
    </item>
    <item>
      <title>Re: Security Policy to block Dropbox</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-to-block-dropbox/m-p/9797#M7186</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have found the IP range from the logs and added them as the destination instead. When I look at the logs my rule which is 2nd from the top is passed by and an Internet access rule further donw my list is the one allowing Dropbox access out. So my rule is being bypassed.&lt;/P&gt;&lt;P&gt;I am stumped at why my rule is being ignored.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am open to suggestions.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2012 00:57:52 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/security-policy-to-block-dropbox/m-p/9797#M7186</guid>
      <dc:creator>kuntzelectroplating</dc:creator>
      <dc:date>2012-08-17T00:57:52Z</dc:date>
    </item>
    <item>
      <title>Re: Security Policy to block Dropbox</title>
      <link>https://live.paloaltonetworks.com/t5/general-topics/security-policy-to-block-dropbox/m-p/9798#M7187</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Solved. I changed the destination address to "any". That was the ticket.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 17 Aug 2012 12:43:14 GMT</pubDate>
      <guid>https://live.paloaltonetworks.com/t5/general-topics/security-policy-to-block-dropbox/m-p/9798#M7187</guid>
      <dc:creator>kuntzelectroplating</dc:creator>
      <dc:date>2012-08-17T12:43:14Z</dc:date>
    </item>
  </channel>
</rss>

